CVE-2006-3910: Medium severity Microsoft ie vulnerability
Internet Explorer 6 on Windows XP SP2, when Outlook is installed, allows remote attackers to cause a denial of service (crash) by calling the NewDefaultItem function of an OVCtl (OVCtl.OVCtl.1) ActiveX object, which triggers a null dereference.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-3910?
CVE-2006-3910 has a moderate severity rating as it allows remote attackers to cause a denial of service.
How do I fix CVE-2006-3910?
To mitigate CVE-2006-3910, it is recommended to update to a later version of Internet Explorer or apply relevant patches from Microsoft.
What versions of Internet Explorer are affected by CVE-2006-3910?
CVE-2006-3910 specifically affects Internet Explorer 6.0 SP2 on Windows XP when Outlook is installed.
What attack vector is used in CVE-2006-3910?
CVE-2006-3910 is exploited via the OVCtl ActiveX control by calling the NewDefaultItem function.
What is the impact of exploiting CVE-2006-3910?
Exploiting CVE-2006-3910 can lead to a denial of service, causing the affected system to crash.